[Bug 1362278] Re: Stack overflow in vararg functions with many fixed parameters called with few arguments

Launchpad Bug Tracker 1362278 at bugs.launchpad.net
Tue Sep 2 17:58:49 UTC 2014


This bug was fixed in the package lua5.1 - 5.1.5-5ubuntu1

---------------
lua5.1 (5.1.5-5ubuntu1) utopic; urgency=medium

  * SECURITY UPDATE: possible code execution via overflow in vararg
    functions (LP: #1362278)
    - debian/patches/CVE-2014-5461.patch: properly calculate length in
      src/ldo.c.
    - CVE-2014-5461
 -- Marc Deslauriers <marc.deslauriers at ubuntu.com>   Tue, 02 Sep 2014 12:01:58 -0400

** Changed in: lua5.1 (Ubuntu Utopic)
       Status: Confirmed => Fix Released

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-5461

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to lua5.2 in Ubuntu.
https://bugs.launchpad.net/bugs/1362278

Title:
  Stack overflow in vararg functions with many fixed parameters called
  with few arguments

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/lua5.1/+bug/1362278/+subscriptions



More information about the Ubuntu-server-bugs mailing list